Exploitation Summary
EIP tracks 1 public exploit for CVE-2005-3204. PoCs published by Alexander Kornbrust.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in Oracle XML DB by injecting a script tag into the URL. The vulnerability arises from insufficient input sanitization, allowing arbitrary script execution in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in Oracle XML DB 9iR2 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP request.
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in Oracle XML DB by injecting a script tag into the URL. The vulnerability arises from insufficient input sanitization, allowing arbitrary script execution in the context of the affected site.